本帖最后由 fzshot 于 2018-7-5 01:46 编辑
Avira 34/50 68%
- Start of the scan: 2018-07-05 03:27:07
- 07/05/2018,03-27-08 [INFO] FP reports status 'NO False Positive' for file 'c:\users\**\desktop\infected\Samp (10).vir'
- 07/05/2018,03-27-08 [INFO] c:\users\**\desktop\infected\Samp (10).vir
- 07/05/2018,03-27-08 [INFO] [DETECTION] file contains 'TR/Dropper.MSIL.Gen'
- 07/05/2018,03-27-10 [INFO] FP reports status 'NO False Positive' for file 'c:\users\**\desktop\infected\Samp (11).vir'
- 07/05/2018,03-27-10 [INFO] The file 'c:\users\**\desktop\infected\Samp (11).vir' was scanned with the Protection Cloud. SHA256 = 137421E6B2D7621C5134DEF50E15C5168BB6C799075B5207E3E2B90B213A293C
- 07/05/2018,03-27-10 [INFO] c:\users\**\desktop\infected\Samp (11).vir
- 07/05/2018,03-27-10 [INFO] [DETECTION] file contains 'TR/Dropper.VB.137421'
- 07/05/2018,03-27-10 [INFO] FP reports status 'NO False Positive' for file 'c:\users\**\desktop\infected\Samp (13).vir'
- 07/05/2018,03-27-10 [INFO] c:\users\**\desktop\infected\Samp (13).vir
- 07/05/2018,03-27-10 [INFO] [DETECTION] file contains 'TR/Kryptik.dozaj'
- 07/05/2018,03-27-10 [INFO] FP reports status 'NO False Positive' for file 'c:\users\**\desktop\infected\Samp (14).vir'
- 07/05/2018,03-27-10 [INFO] c:\users\**\desktop\infected\Samp (14).vir
- 07/05/2018,03-27-10 [INFO] [DETECTION] file contains 'TR/Crypt.ZPACK.jlisw'
- 07/05/2018,03-27-10 [INFO] FP reports status 'NO False Positive' for file 'c:\users\**\desktop\infected\Samp (15).vir'
- 07/05/2018,03-27-10 [INFO] c:\users\**\desktop\infected\Samp (15).vir
- 07/05/2018,03-27-10 [INFO] [DETECTION] file contains 'TR/AD.MalwareCrypter.nwhjk'
- 07/05/2018,03-27-10 [INFO] FP reports status 'NO False Positive' for file 'c:\users\**\desktop\infected\Samp (16).vir'
- 07/05/2018,03-27-10 [INFO] c:\users\**\desktop\infected\Samp (16).vir
- 07/05/2018,03-27-10 [INFO] [DETECTION] file contains 'TR/Downloader.Gen7'
- 07/05/2018,03-27-11 [INFO] FP reports status 'NO False Positive' for file 'c:\users\**\desktop\infected\Samp (17).vir'
- 07/05/2018,03-27-11 [INFO] c:\users\**\desktop\infected\Samp (17).vir
- 07/05/2018,03-27-11 [INFO] [DETECTION] file contains 'TR/Dldr.Hafen.fxlse'
- 07/05/2018,03-27-11 [INFO] FP reports status 'NO False Positive' for file 'c:\users\**\desktop\infected\Samp (18).vir'
- 07/05/2018,03-27-11 [INFO] c:\users\**\desktop\infected\Samp (18).vir
- 07/05/2018,03-27-11 [INFO] [DETECTION] file contains 'TR/Dldr.Agent.inrvg'
- 07/05/2018,03-27-11 [INFO] FP reports status 'NO False Positive' for file 'c:\users\**\desktop\infected\Samp (2).vir'
- 07/05/2018,03-27-11 [INFO] c:\users\**\desktop\infected\Samp (2).vir
- 07/05/2018,03-27-11 [INFO] [DETECTION] file contains 'ADWARE/FileTour.Gen'
- 07/05/2018,03-27-12 [INFO] FP reports status 'NO False Positive' for file 'c:\users\**\desktop\infected\Samp (22).vir'
- 07/05/2018,03-27-12 [INFO] c:\users\**\desktop\infected\Samp (22).vir
- 07/05/2018,03-27-12 [INFO] [DETECTION] file contains 'TR/AD.UrsnifDropper.btuqu'
- 07/05/2018,03-27-12 [INFO] FP reports status 'NO False Positive' for file 'c:\users\**\desktop\infected\Samp (26).vir'
- 07/05/2018,03-27-12 [INFO] c:\users\**\desktop\infected\Samp (26).vir
- 07/05/2018,03-27-12 [INFO] [DETECTION] file contains 'PUA/ICLoader.Gen8'
- 07/05/2018,03-27-12 [INFO] FP reports status 'NO False Positive' for file 'c:\users\**\desktop\infected\Samp (27).vir'
- 07/05/2018,03-27-12 [INFO] c:\users\**\desktop\infected\Samp (27).vir
- 07/05/2018,03-27-12 [INFO] [DETECTION] file contains 'TR/Injector.vsdlu'
- 07/05/2018,03-27-12 [INFO] FP reports status 'NO False Positive' for file 'c:\users\**\desktop\infected\Samp (3).vir'
- 07/05/2018,03-27-12 [INFO] c:\users\**\desktop\infected\Samp (3).vir
- 07/05/2018,03-27-12 [INFO] [DETECTION] file contains 'TR/Dropper.VB.izokx'
- 07/05/2018,03-27-12 [INFO] FP reports status 'NO False Positive' for file 'c:\users\**\desktop\infected\Samp (31).vir'
- 07/05/2018,03-27-12 [INFO] c:\users\**\desktop\infected\Samp (31).vir
- 07/05/2018,03-27-12 [INFO] [DETECTION] file contains 'ADWARE/FileTour.Gen'
- 07/05/2018,03-27-13 [INFO] FP reports status 'NO False Positive' for file 'c:\users\**\desktop\infected\Samp (32).vir'
- 07/05/2018,03-27-13 [INFO] c:\users\**\desktop\infected\Samp (32).vir
- 07/05/2018,03-27-13 [INFO] [DETECTION] file contains 'HEUR/AGEN.1015906'
- 07/05/2018,03-27-13 [INFO] FP reports status 'NO False Positive' for file 'c:\users\**\desktop\infected\Samp (33).vir'
- 07/05/2018,03-27-13 [INFO] The file 'c:\users\**\desktop\infected\Samp (33).vir' was scanned with the Protection Cloud. SHA256 = 98C19A1EB72951E4C745A7F17A60531FF4C6D092F9FD3963F6615AA1EB9BE420
- 07/05/2018,03-27-13 [INFO] c:\users\**\desktop\infected\Samp (33).vir
- 07/05/2018,03-27-13 [INFO] [DETECTION] file contains 'TR/Dropper.VB.98c19a'
- 07/05/2018,03-27-13 [INFO] FP reports status 'NO False Positive' for file 'c:\users\**\desktop\infected\Samp (34).vir'
- 07/05/2018,03-27-13 [INFO] c:\users\**\desktop\infected\Samp (34).vir
- 07/05/2018,03-27-13 [INFO] [DETECTION] file contains 'TR/Spy.Papras.tfrtz'
- 07/05/2018,03-27-13 [INFO] FP reports status 'NO False Positive' for file 'c:\users\**\desktop\infected\Samp (35).vir'
- 07/05/2018,03-27-13 [INFO] c:\users\**\desktop\infected\Samp (35).vir
- 07/05/2018,03-27-13 [INFO] [DETECTION] file contains 'Adware/Coupons.xxfcr'
- 07/05/2018,03-27-13 [INFO] FP reports status 'NO False Positive' for file 'c:\users\**\desktop\infected\Samp (37).vir'
- 07/05/2018,03-27-13 [INFO] The file 'c:\users\**\desktop\infected\Samp (37).vir' was scanned with the Protection Cloud. SHA256 = 2060C3DE56159D89FAE6B5B1CCFED174EE00B6D1E2FFBBE5A3B0B2E161ED493F
- 07/05/2018,03-27-13 [INFO] c:\users\**\desktop\infected\Samp (37).vir
- 07/05/2018,03-27-13 [INFO] [DETECTION] file contains 'TR/AD.MoksSteal.Y'
- 07/05/2018,03-27-14 [INFO] FP reports status 'NO False Positive' for file 'c:\users\**\desktop\infected\Samp (38).vir'
- 07/05/2018,03-27-14 [INFO] c:\users\**\desktop\infected\Samp (38).vir
- 07/05/2018,03-27-14 [INFO] [DETECTION] file contains 'TR/Crypt.CFI.Gen'
- 07/05/2018,03-27-14 [INFO] FP reports status 'NO False Positive' for file 'c:\users\**\desktop\infected\Samp (4).vir'
- 07/05/2018,03-27-14 [INFO] The file 'c:\users\**\desktop\infected\Samp (4).vir' was scanned with the Protection Cloud. SHA256 = C426D8A86AFC48B0D01F2B1724ED375667E1BD2F01AFEF697C4D491B69EC5C6B
- 07/05/2018,03-27-14 [INFO] c:\users\**\desktop\infected\Samp (4).vir
- 07/05/2018,03-27-14 [INFO] [DETECTION] file contains 'SPR/BruteForce.c426d8'
- 07/05/2018,03-27-14 [INFO] FP reports status 'NO False Positive' for file 'c:\users\**\desktop\infected\Samp (41).vir'
- 07/05/2018,03-27-14 [INFO] c:\users\**\desktop\infected\Samp (41).vir
- 07/05/2018,03-27-14 [INFO] [DETECTION] file contains 'TR/Dropper.MSIL.eicaf'
- 07/05/2018,03-27-14 [INFO] FP reports status 'NO False Positive' for file 'c:\users\**\desktop\infected\Samp (42).vir'
- 07/05/2018,03-27-14 [INFO] c:\users\**\desktop\infected\Samp (42).vir
- 07/05/2018,03-27-14 [INFO] [DETECTION] file contains 'TR/Dldr.Delphi.dqyzp'
- 07/05/2018,03-27-14 [INFO] FP reports status 'NO False Positive' for file 'c:\users\**\desktop\infected\Samp (43).vir'
- 07/05/2018,03-27-14 [INFO] c:\users\**\desktop\infected\Samp (43).vir
- 07/05/2018,03-27-14 [INFO] [DETECTION] file contains 'HEUR/AGEN.1015906'
- 07/05/2018,03-27-15 [INFO] FP reports status 'NO False Positive' for file 'c:\users\**\desktop\infected\Samp (44).vir'
- 07/05/2018,03-27-15 [INFO] c:\users\**\desktop\infected\Samp (44).vir
- 07/05/2018,03-27-15 [INFO] [DETECTION] file contains 'TR/PSW.Agent.ytrht'
- 07/05/2018,03-27-15 [INFO] FP reports status 'NO False Positive' for file 'c:\users\**\desktop\infected\Samp (45).vir'
- 07/05/2018,03-27-15 [INFO] c:\users\**\desktop\infected\Samp (45).vir
- 07/05/2018,03-27-15 [INFO] [DETECTION] file contains 'HEUR/Macro.Agent'
- 07/05/2018,03-27-15 [INFO] The file 'c:\users\**\desktop\infected\Samp (46).vir' was scanned with the Protection Cloud. SHA256 = 2DF6C36B4784F4934AFABE081335830EE9C00520070582B5A381335B4350F951
- 07/05/2018,03-27-15 [INFO] FP reports status 'NO False Positive' for file 'c:\users\**\desktop\infected\Samp (47).vir'
- 07/05/2018,03-27-15 [INFO] c:\users\**\desktop\infected\Samp (47).vir
- 07/05/2018,03-27-15 [INFO] [DETECTION] file contains 'TR/Dropper.MSIL.julcp'
- 07/05/2018,03-27-15 [INFO] FP reports status 'NO False Positive' for file 'c:\users\**\desktop\infected\Samp (48).vir'
- 07/05/2018,03-27-15 [INFO] c:\users\**\desktop\infected\Samp (48).vir
- 07/05/2018,03-27-15 [INFO] [DETECTION] file contains 'TR/Rogue.11364784'
- 07/05/2018,03-27-15 [INFO] FP reports status 'NO False Positive' for file 'c:\users\**\desktop\infected\Samp (49).vir'
- 07/05/2018,03-27-15 [INFO] c:\users\**\desktop\infected\Samp (49).vir
- 07/05/2018,03-27-15 [INFO] [DETECTION] file contains 'TR/Dropper.MSIL.uuovv'
- 07/05/2018,03-27-16 [INFO] FP reports status 'NO False Positive' for file 'c:\users\**\desktop\infected\Samp (50).vir'
- 07/05/2018,03-27-16 [INFO] c:\users\**\desktop\infected\Samp (50).vir
- 07/05/2018,03-27-16 [INFO] [DETECTION] file contains 'TR/Crypt.ZPACK.Gen'
- 07/05/2018,03-27-16 [INFO] FP reports status 'NO False Positive' for file 'c:\users\**\desktop\infected\Samp (6).vir'
- 07/05/2018,03-27-16 [INFO] c:\users\**\desktop\infected\Samp (6).vir
- 07/05/2018,03-27-16 [INFO] [DETECTION] file contains 'TR/Spy.Agent.20480.127'
- 07/05/2018,03-27-16 [INFO] FP reports status 'NO False Positive' for file 'c:\users\**\desktop\infected\Samp (7).vir'
- 07/05/2018,03-27-16 [INFO] c:\users\**\desktop\infected\Samp (7).vir
- 07/05/2018,03-27-16 [INFO] [DETECTION] file contains 'TR/Rogue.9094949'
- 07/05/2018,03-27-16 [INFO] FP reports status 'NO False Positive' for file 'c:\users\**\desktop\infected\Samp (8).vir'
- 07/05/2018,03-27-16 [INFO] c:\users\**\desktop\infected\Samp (8).vir
- 07/05/2018,03-27-16 [INFO] [DETECTION] file contains 'Adware/CsdiMonetize.ichjn'
- 07/05/2018,03-27-16 [INFO] FP reports status 'NO False Positive' for file 'c:\users\**\desktop\infected\Samp (9).vir'
- 07/05/2018,03-27-16 [INFO] c:\users\**\desktop\infected\Samp (9).vir
- 07/05/2018,03-27-16 [INFO] [DETECTION] file contains 'TR/Miner.gyfvd'
复制代码
智量终端安全 36/50 72%
- Time FilePath VirusName
- 2018-7-5 3:43 C:\Users\test\Desktop\infected\Samp (10).vir Heur.ML.PE.C
- 2018-7-5 3:43 C:\Users\test\Desktop\infected\Samp (11).vir Heur.ML.PE.D
- 2018-7-5 3:43 C:\Users\test\Desktop\infected\Samp (13).vir Heur.ML.PE.C
- 2018-7-5 3:43 C:\Users\test\Desktop\infected\Samp (14).vir Heur.ML.PE.A
- 2018-7-5 3:43 C:\Users\test\Desktop\infected\Samp (15).vir Heur.ML.PE.A
- 2018-7-5 3:43 C:\Users\test\Desktop\infected\Samp (16).vir Trojan.Generic
- 2018-7-5 3:43 C:\Users\test\Desktop\infected\Samp (18).vir Heur.ML.PE.C
- 2018-7-5 3:43 C:\Users\test\Desktop\infected\Samp (19).vir Trojan.Generic
- 2018-7-5 3:43 C:\Users\test\Desktop\infected\Samp (20).vir Trojan.Generic
- 2018-7-5 3:43 C:\Users\test\Desktop\infected\Samp (22).vir Heur.ML.PE.A
- 2018-7-5 3:43 C:\Users\test\Desktop\infected\Samp (24).vir Trojan.Generic
- 2018-7-5 3:43 C:\Users\test\Desktop\infected\Samp (27).vir Heur.ML.PE.D
- 2018-7-5 3:43 C:\Users\test\Desktop\infected\Samp (29).vir Heur.ML.PE.A
- 2018-7-5 3:43 C:\Users\test\Desktop\infected\Samp (3).vir Heur.ML.PE.D
- 2018-7-5 3:43 C:\Users\test\Desktop\infected\Samp (30).vir PUP.Generic
- 2018-7-5 3:43 C:\Users\test\Desktop\infected\Samp (31).vir PUP.Generic
- 2018-7-5 3:43 C:\Users\test\Desktop\infected\Samp (32).vir Heur.ML.PE.A
- 2018-7-5 3:43 C:\Users\test\Desktop\infected\Samp (33).vir Heur.ML.PE.D
- 2018-7-5 3:43 C:\Users\test\Desktop\infected\Samp (34).vir Heur.ML.PE.A
- 2018-7-5 3:43 C:\Users\test\Desktop\infected\Samp (35).vir Adware.Generic
- 2018-7-5 3:43 C:\Users\test\Desktop\infected\Samp (37).vir Heur.ML.PE.A
- 2018-7-5 3:43 C:\Users\test\Desktop\infected\Samp (38).vir Heur.ML.PE.B
- 2018-7-5 3:43 C:\Users\test\Desktop\infected\Samp (4).vir Heur.ML.PE.C
- 2018-7-5 3:43 C:\Users\test\Desktop\infected\Samp (40).vir Trojan.Generic
- 2018-7-5 3:43 C:\Users\test\Desktop\infected\Samp (41).vir Trojan.Generic
- 2018-7-5 3:43 C:\Users\test\Desktop\infected\Samp (42).vir Trojan.Generic
- 2018-7-5 3:43 C:\Users\test\Desktop\infected\Samp (43).vir Heur.ML.PE.A
- 2018-7-5 3:43 C:\Users\test\Desktop\infected\Samp (44).vir Heur.ML.PE.C
- 2018-7-5 3:43 C:\Users\test\Desktop\infected\Samp (46).vir Heur.ML.PE.A
- 2018-7-5 3:43 C:\Users\test\Desktop\infected\Samp (47).vir Heur.ML.PE.C
- 2018-7-5 3:43 C:\Users\test\Desktop\infected\Samp (48).vir Heur.ML.PE.B
- 2018-7-5 3:43 C:\Users\test\Desktop\infected\Samp (49).vir Heur.ML.PE.C
- 2018-7-5 3:43 C:\Users\test\Desktop\infected\Samp (50).vir Heur.ML.PE.B
- 2018-7-5 3:43 C:\Users\test\Desktop\infected\Samp (7).vir Trojan.Generic
- 2018-7-5 3:43 C:\Users\test\Desktop\infected\Samp (8).vir Heur.ML.PE.C
- 2018-7-5 3:43 C:\Users\test\Desktop\infected\Samp (9).vir Trojan.Generic
复制代码
|